11689550

Methods and Apparatus to Analyze Network Traffic for Malicious Activity

PublishedJune 27, 2023
Assigneenot available in USPTO data we have
Technical Abstract

Patent Claims
20 claims

Legal claims defining the scope of protection, as filed with the USPTO.

2

2. The apparatus of claim 1, wherein the apparatus is implemented in a transductive machine learning environment.

3

3. The apparatus of claim 2, further including an input processor to obtain the input data from at least one of a training controller or a connectivity environment.

4

4. The apparatus of claim 3, wherein the input processor is to obtain the input data in response to a reputation verification request, the reputation verification request requesting to identify the reputation of at least one of the internet protocol addresses.

5

5. The apparatus of claim 2, further including a file analyzer to extract the one or more features from the internet protocol addresses in the input data.

6

6. The apparatus of claim 5, wherein, to extract the one or more features, the file analyzer is to identify at least one of the subnetwork or an autonomous system numbers group associated with the internet protocol addresses.

7

7. The apparatus of claim 1, wherein the classifier is operable with a graph neural network.

9

9. The computer readable storage medium of claim 8, wherein the at least one processor is implemented in a transductive machine learning environment.

10

10. The computer readable storage medium of claim 9, wherein the instructions, when executed, cause the at least one processor to obtain the input data from at least one of a training controller or a connectivity environment.

11

11. The computer readable storage medium of claim 10, wherein the instructions, when executed, cause the at least one processor to obtain the input data in response to a reputation verification request, the reputation verification request requesting to identify the reputation of at least one of the internet protocol addresses.

12

12. The computer readable storage medium of claim 9, wherein the instructions, when executed, cause the at least one processor to extract the one or more features from the internet protocol addresses in the input data.

13

13. The computer readable storage medium of claim 12, wherein the instructions, when executed, cause the at least one processor to extract the one or more features by identifying at least one of a subnetwork or an autonomous system numbers group associated with the internet protocol addresses.

14

14. The computer readable storage medium of claim 8, wherein the at least one processor is operable with a graph neural network.

16

16. The method of claim 15, wherein classifying the at least one of the internet protocol addresses is implemented in a transductive machine learning environment.

17

17. The method of claim 16, further including obtaining the input data in response to a reputation verification request, the reputation verification request requesting to identify the reputation of at least one of the internet protocol addresses.

18

18. The method of claim 16, further including extracting the one or more features from the internet protocol addresses in the input data.

19

19. The method of claim 18, further including extracting the one or more features by identifying at least one of a subnetwork or the same autonomous system number associated with the internet protocol addresses.

20

20. The method of claim 15, wherein classifying the at least one of the internet protocol addresses is implemented with a graph neural network.

21

21. The apparatus of claim 1, wherein the relationship between the nodes represented by the edges is based on a geographic location of the internet protocol addresses associated with the nodes.

22

22. The computer readable storage medium of claim 8, wherein the relationship between the nodes represented by the edges is based on shared autonomous system numbers indicated by the internet protocol addresses associated with the nodes.

23

23. The method of claim 15, wherein the edges are indicative of respective ones of the nodes that are in a same subnetwork.

Patent Metadata

Filing Date

Unknown

Publication Date

June 27, 2023

Inventors

Yonghong Huang
Armando Rodriguez
Adam Wosotowsky
John Wagener
Joanna Negrete
Eric Peterson
Celeste Fralick

Want to explore more patents?

Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.

Citation & reuse

Analysis on this page is generated by Patentable — an AI-powered patent intelligence platform. AI-generated summaries, explanations, and analysis may be reused with attribution and a visible link back to the canonical URL below. Patent abstracts and claims are USPTO public domain.

Cite as: Patentable. “METHODS AND APPARATUS TO ANALYZE NETWORK TRAFFIC FOR MALICIOUS ACTIVITY” (11689550). https://patentable.app/patents/11689550

© 2026 Patentable. All rights reserved.

Patentable is a research and drafting-assistant tool, not a law firm, and does not provide legal advice. Documents we generate are drafts for review by a licensed patent attorney.